vulnerability

SUSE: CVE-2019-12387: SUSE Linux Security Advisory

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Jun 10, 2019
Added
Jul 22, 2019
Modified
Feb 4, 2022

Description

In Twisted before 19.2.1, twisted.web did not validate or sanitize URIs or HTTP methods, allowing an attacker to inject invalid characters such as CRLF.

Solutions

suse-upgrade-python-twistedsuse-upgrade-python-twisted-docsuse-upgrade-python2-twistedsuse-upgrade-python3-twisted
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.